13 
name acl-name: Specifies an ACL by its name. The acl-name argument is a case-insensitive string 
of 1 to 63 characters. 
slot slot-number: Specifies an IRF member device by its member ID. If you do not specify a member 
device, this command displays ACL application details for packet filtering for the master device.  
Usage guidelines 
If acl-number, name acl-name, ipv6, or mac is not specified, this command displays application 
details of all ACLs for packet filtering.  
To specify the IPv4 ACL type, do not specify the ipv6 or mac keyword. 
Examples 
# Display application details of all ACLs for inbound packet filtering on Ten-GigabitEthernet 1/0/1. 
<Sysname> display packet-filter verbose interface ten-gigabitethernet 1/0/1 inbound 
Interface: Ten-GigabitEthernet1/0/1 
 Inbound policy: 
  IPv4 ACL 2001 
   rule 0 permit 
   rule 5 permit source 1.1.1.1 0 (Failed) 
   rule 10 permit vpn-instance test (Failed) 
 
  IPv4 ACL 2002 (Failed) 
 
  IPv6 ACL 2000 
   rule 0 permit 
 
  MAC ACL 4000 
 
  IPv4 default action: Deny 
 
  IPv6 default action: Deny 
 
  MAC default action: Deny 
Table 5 Command output 
Field Description 
Interface
 
Interface to which the ACL applies. 
Inbound policy  ACL used for filtering incoming traffic. 
Outbound policy
 
ACL used for filtering outgoing traffic. 
IPv4 ACL 2001  IPv4 basic ACL 2001 has been successfully applied. 
IPv4 ACL 2002 (Failed)  The device has failed to apply IPv4 basic ACL 2002. 
Hardware-count  ACL rule match counting has been successfully enabled. 
Hardware-count (Failed)  The device has failed to enable counting ACL rule matches. 
rule 5 permit source 1.1.1.1 0 (Failed)  The device has failed to apply rule 5.  
IPv4 default action 
Packet filter default action for packets that do not match any 
IPv4 ACLs: 
•  Deny—The default action deny has been successfully 
applied for packet filtering. 
•  Deny (Failed)—The device has failed to apply the default